Posted on 01/11/2025 2:34:03 PM PST by Libloather
An estimated 100 million Apple users are at risk of falling victim to malware.
Cybersecurity software company Check Point issued an urgent warning to the millions of Mac users around the world who may be preyed on by malicious actors evading the devices’ built-in antivirus systems.
According to the company, cybercriminals have developed malware, dubbed the “Banshee macOS Stealer,” which secretly steals credentials and other sensitive data while operating undetected for more than months.
The malware first emerged last year in what Check Point calls “underground forums” and was called a “stealer-as-a-service” that was available to purchase for just $3,000. With it, cybercriminals could target Mac users with malware through phishing sites masquerading as popular software companies like Chrome and Telegram, the company reported.
In the fall, it was discovered that the “Banshee macOS Stealer” was modified by developers using “stolen” code from Apple’s XProtect, an antivirus system built into Mac devices, which allowed the malware to go undetected on user’s computers.
“This stealthy malware doesn’t just infiltrate; it operates undetected, blending seamlessly with normal system processes while stealing browser credentials, cryptocurrency wallets, user passwords, and sensitive file data,” Check Point researchers wrote.
“What makes Banshee truly alarming is its ability to evade detection. Even seasoned IT professionals struggle to identify its presence.”
(Excerpt) Read more at nypost.com ...
Somebody is taking a byte [or more] out of Apple.
Who took the original bite out of the Apple apple?
My bank might text me if it gets a questionable debit charge with say one of 20 numbers from my current bank statement and one of 20 from my previous bank statement. If I don’t text back a matching number, the transaction won’t go through.
The best hackers are still in the Eastern Block and Russia.
But since China has access to raw Apple XCode, they may have ways to study the code for vulnerabilities.
Either way, the NSA’s glory days are behind it.
I really wish Free Republic had an IGNORE function.
Crap like this is banal, a waste of Jim's money, a waste of everybody's time, and not the least bit humorous.
SEND IN MORE MONEY....
Apple Ping
Who are the Mac experts on FR?
With all the fire and everything, it’s kinda slipped my mind.
"Who are the Mac experts on FR?"
> Well, Swordmaker was Apple (I pinged him), but he hasn't been on since the beginning of 2024 (April 2024, I think)... (Hope he is ok)
Likewise, I hope he's okay, he's had to weather some rough times in recent years. I don't know if he's affected by the recent LA fires; last I knew he was in that general area but that was a while ago.
> dayglored is computers in general, and ShadowAce is tech/Linux.
Well strictly speaking I (dayglored) mostly stick to Windows/Microsoft things because I run the Windows Ping List. But in fact my personal computers are mostly MacOS, and my favorite working environment is Linux, so I do get involved in those discussions as well.
I'll have to do some more reading about this Mac malware, sounds nasty.
And here I am, using Linux but stuck having to use WinBlows if I want to play anything on VR..
This is a bad case of thread-drift. You can get help for this debilitating disease by starting your own vanity thread to file your complaints about Linux distros.
I’m so used to working concurrently in all three environments that I hardly think about it any more. I’m most at home in a POSIX OS, these days that’s almost entirely Linux although I spent years in BSD. But Windows or MacOS is fine for the things they’re good at. I’m not a gamer so the limitations of Linux in that regard don’t affect me, but if I were gaming and it had to be in Windows, well that’s life I guess.
More bad news for SoCal.
I always got the feeling that the Celebs favored the fruit phone.
Squantos has been MIA for a while also.
I would think Apple would add this malware definition to XProtect.
Hopefully they are on top of it.
Since the system volume is sealed & applications are signed + scanned for malware, I would hope any Xprotect link would be mitigated.
Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.